Jonathan Herzog ff736a61bb Hash functions now check for input-length overflow.
Because many of the hash-functions implemented by LTC use the length
of the input when padding the input out to a block-length, LTC keeps
track of the input length in a 64-bit integer. However, it did not
previously test for overflow of this value. Since many of the
hash-functions implemented by LTC are defined for inputs of length
2^128 bits or more, this means that LTC was incorrectly implementing
these hash functions for extremely long inputs. Also, this might have
been a minor security problem: A clever attacker might have been able
to take a message with a known hash and find another message (longer
by 2^64 bits) that would be hashed to the same value by LTC.

Fortunately, LTC uses a pre-processor macro to make the actual code
for hashing, and so this problem could be fixed by adding an
overflow-check to that macro.
2014-08-06 19:06:00 +02:00
2014-04-29 21:13:49 +02:00
2014-07-17 12:10:05 +02:00
2014-07-15 15:45:39 +02:00
2010-06-16 12:39:13 +02:00
2014-05-07 17:36:50 +02:00
2010-06-16 12:39:13 +02:00
2012-11-23 00:49:26 +01:00
2012-11-23 00:49:26 +01:00
2014-04-29 21:13:49 +02:00
2013-03-15 11:16:16 +01:00
2013-03-15 11:16:16 +01:00
2013-03-15 11:16:16 +01:00
2012-11-23 00:49:26 +01:00
2014-04-29 21:13:49 +02:00
2014-05-25 00:35:03 +02:00
2014-04-29 21:13:49 +02:00
2010-06-16 12:39:13 +02:00

libtomcrypt

See doc/crypt.pdf for a detailed documentation

Project Status

develop: Build Status Coverage Status Coverity Scan Build Status

Submitting patches

Please branch off from develop if you want to submit a patch.

Branches

Please be aware, that all branches besides master and develop can and will be force-pushed, rebased and/or removed!

If you want to rely on such an unstable branch, create your own fork of this repository to make sure nothing breaks for you.

S
Description
No description provided
Readme WTFPL 18 MiB
Languages
C 98.2%
Makefile 0.7%
Perl 0.4%
Shell 0.3%
Java 0.2%
Other 0.1%